wrapper.exe

The executable wrapper.exe has been detected as malware by 26 anti-virus scanners.
MD5:
4734b63d66c9b725fccdab9b9a30ff4a

SHA-1:
4575ebd6aa7c9b2fbd493c040a8073afc21feedb

SHA-256:
1e12cfdee1a9075e953cea4a0e42a99a5621e86fbb82ae98a8b6a564946cedba

Scanner detections:
26 / 68

Status:
Malware

Analysis date:
4/25/2024 8:41:10 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.90746
354

Agnitum Outpost
Trojan.Graftosifo
7.1.1

Avira AntiVirus
TR/Graftosifo.A
7.11.212.140

avast!
Win32:Malware-gen
2014.9-160215

AVG
CoinMiner
2017.0.2832

Baidu Antivirus
Trojan.Win32.BitMiner
4.0.3.16215

Bitdefender
Gen:Variant.Zusy.90746
1.0.20.230

Comodo Security
UnclassifiedMalware
21214

Emsisoft Anti-Malware
Gen:Variant.Zusy.90746
8.16.02.15.07

ESET NOD32
Win32/CoinMiner.PJ (variant)
10.11233

Fortinet FortiGate
W32/CoinMiner.PJ!tr
2/15/2016

F-Prot
W32/Zbot.QO.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Zusy.90746
11.2016-15-02_2

G Data
Gen:Variant.Zusy.90746
16.2.25

IKARUS anti.virus
Win32.Malware
t3scan.1.8.6.0

K7 AntiVirus
Riskware
13.198.15085

Kaspersky
Trojan.Win32.BitMiner
14.0.0.656

McAfee
Artemis!4734B63D66C9
5600.6488

MicroWorld eScan
Gen:Variant.Zusy.90746
17.0.0.138

NANO AntiVirus
Trojan.Win32.Graftosifo.czjwtc
0.30.0.296

Norman
Troj_Generic.UZLZE
11.20160215

Qihoo 360 Security
Win32/Trojan.31f
1.0.0.1015

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_GEN.R047C0EAA15
7.2.46

Vba32 AntiVirus
Trojan.BitMiner
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
37906

File size:
47 KB (48,128 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\wrapper.exe

File PE Metadata
Compilation timestamp:
1/19/2014 9:06:25 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
768:wjeX9g8C8bpE2mDdLmu0R4/SUBSIRxWheLShorXL/PkUEDjXnhymyrr:wu9gUudDdSu0CSUBSmI+XL/PsK

Entry address:
0x16CC

Entry point:
E8, 4E, 25, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 81, EC, 28, 03, 00, 00, A3, D8, CE, 40, 00, 89, 0D, D4, CE, 40, 00, 89, 15, D0, CE, 40, 00, 89, 1D, CC, CE, 40, 00, 89, 35, C8, CE, 40, 00, 89, 3D, C4, CE, 40, 00, 66, 8C, 15, F0, CE, 40, 00, 66, 8C, 0D, E4, CE, 40, 00, 66, 8C, 1D, C0, CE, 40, 00, 66, 8C, 05, BC, CE, 40, 00, 66, 8C, 25, B8, CE, 40, 00, 66, 8C, 2D, B4, CE, 40, 00, 9C, 8F, 05, E8, CE, 40, 00, 8B, 45, 00, A3, DC, CE, 40, 00, 8B, 45, 04, A3, E0, CE, 40, 00, 8D, 45, 08, A3, EC, CE, 40...
 
[+]

Entropy:
5.9979

Code size:
29 KB (29,696 bytes)

Remove wrapper.exe - Powered by Reason Core Security